EIP-2026-110714

PRE-CVE

PHP Labs Survey Wizard - SQL Injection

Title source: legacy
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for EIP-2026-110714. PoCs published by r0t.

AI-analyzed exploit summary This is a vulnerability writeup describing an SQL injection flaw in PHP Labs Survey Wizard. The issue arises from insufficient input sanitization in the 'sid' parameter of survey.php, allowing attackers to manipulate SQL queries.

Description

PHP Labs Survey Wizard - SQL Injection

Exploits (1)

exploitdb WRITEUP VERIFIED
by r0t · textwebappsphp
https://www.exploit-db.com/exploits/26569

This is a vulnerability writeup describing an SQL injection flaw in PHP Labs Survey Wizard. The issue arises from insufficient input sanitization in the 'sid' parameter of survey.php, allowing attackers to manipulate SQL queries.

Classification
Writeup 90%
Attack Type
Sqli
Complexity
Trivial
Reliability
Theoretical
Target: PHP Labs Survey Wizard
No auth needed
Prerequisites: Access to the survey.php endpoint
devstral-2 · analyzed Feb 16, 2026 Full analysis →

Details

Status pre_cve
Tracked Since Feb 18, 2026